Pages:
Author

Topic: Hackers steal data from MtGox server and release it with Mark's reddit account. - page 6. (Read 15403 times)

hero member
Activity: 588
Merit: 501
Although the info may be a smoke screen on it's face, it is likely to include valuable bits of info providing additional dimenions to inner workings of the organization and it's leadership; as such the data was sent to the 'CSI lab'  https://bitcointalk.org/index.php?topic=492776.0;all

hero member
Activity: 714
Merit: 500
NEED CRYPTO CODER? COIN DEVELOPER? PM US FOR HELP!
can't find anything there no files nothing i think thy removed the links Huh
hero member
Activity: 531
Merit: 505
I haven't downloaded anything due to fear of malware, but would I be able to get my trade data off this?  I need it to do my taxes.

You can download it, its ZIP with plenty of CVS files (harmless text files). Do not run EXE files, or open PDF.

If you know your user guid (long hexa string you received with your registration), you can find yourself in the dump.

hero member
Activity: 742
Merit: 500
Since the data seems to have been stolen around the time MtGox shutdown or later the question would be ... why would you keep this information on a webserver if you aren't actively using it anymore?  

Lazyness.


My guess is the db was stolen from a business associate/employee.

left from the leaker:
Code:

Is that in the database itself? Could it be a message left there long ago?

Just playing devil's advocate.
sr. member
Activity: 294
Merit: 250
Great a life time of goxxing inbound. What a massive clusterfuck.

So identity theft aside its kind of funny you have more chance getting you account information from hackers than Gox themselves.

I honestly think Mark has effected my life in a bad way more than any other human being.
legendary
Activity: 1040
Merit: 1001
I haven't downloaded anything due to fear of malware, but would I be able to get my trade data off this?  I need it to do my taxes.
hero member
Activity: 672
Merit: 501
1. There are no hackers and Mark made the leak himself (and did not reveal december, january and february in order to protect the ''thieves'')

On a closely related note to option #1, note that the original post and data dump is still posted on Mark's personal blog, several hours later.  I do find that somewhat suspicious.  It shouldn't have taken particularly long for Mark to notice, and to take corrective action to remove the post and data (assuming he is able).

http://blog.magicaltux.net/

Coulda been sleeping... its like the middle of the night over there.
sr. member
Activity: 347
Merit: 250
1. There are no hackers and Mark made the leak himself (and did not reveal december, january and february in order to protect the ''thieves'')

On a closely related note to option #1, note that the original post and data dump is still posted on Mark's personal blog, several hours later.  I do find that somewhat suspicious.  It shouldn't have taken particularly long for Mark to notice, and to take corrective action to remove the post and data (assuming he is able).

http://blog.magicaltux.net/
sr. member
Activity: 378
Merit: 250
Born to chew bubble gum and kick ass
the hackers removed december, january and february, but the user endbalances are right.

December, january and february are the most crucial ones (to know who withdrew massive amounts of coins prior to Gox's collapse due to potential insider knowledge). Why would hackers remove these months I wonder  Huh

because there are no hackers and mark made the leak himself?

Maybe. I have three four explanations (including yours):

1. There are no hackers and Mark made the leak himself (and did not reveal december, january and february in order to protect the ''thieves'')

2. Hackers are connected to the ''thieves'' (and did not reveal december, january and february in order to protect the ''thieves'')

3. Hackers are neither connected to Mark nor ''thieves'' (and did not reveal december, january and february in order to run their own investigation on who withdrew easily large amount of coins and fiat - when all other people had problems with withdrawals - in december, january, february thus causing Gox to collapse).

4. Hackers need time to alter december, january, february data for reasons we can't yet understand.


Dear hackers, if option 3 is the correct one, please give us unaltered december, january and february data, so that we could investigate too  Smiley
sr. member
Activity: 347
Merit: 250
EDIT: Ah, user end balances are supposedly correct, that would be evidence supporting the word of the hackers.

My last trade was on 2014-01-23, and the balance in the leaked data is correct for what my BTC balance was at that point.  So, apparently it happened on or after that date.  If enough people post after checking their accounts in the leaked data, we can determine the earliest date the leak could have occurred by consensus.  At least for the final user balance dump.
member
Activity: 74
Merit: 10
Since the data seems to have been stolen around the time MtGox shutdown or later the question would be ... why would you keep this information on a webserver if you aren't actively using it anymore?  

Is there data that suggest this? I'm not yet on a machine with an environment I can open it, so I'm only going off the reports of the last few months missing from the CSV. or is that just based on when the rumors of this started. Until I see data that proves the hack happened after the shutdown I'm going to assume they don't have it because it happened before or only involved a backup.

I mean, at this point it wouldn't surprise me in the least if Mark still had it facing the web, but I'm not about to trust the word of the hackers without evidence.


EDIT: Ah, user end balances are supposedly correct, that would be evidence supporting the word of the hackers.
member
Activity: 74
Merit: 10
Are there any email and passwords in the leaked data? Cos I had an account there and am worried about the leak.

You should assume nefarious people have all your personal data you gave Gox, even if not included here.

the hackers removed december, january and february, but the user endbalances are right.

December, january and february are the most crucial ones (to know who withdrew massive amounts of coins prior to Gox's collapse due to potential insider knowledge). Why would hackers remove these months I wonder  Huh

This and the data nanashi____ leaked were both old, I think I even remember it being pointed out that the source code leaked was probably old.  Seems that another possible explanation (which still implies Karpeles' incompetence) is this hack happened earlier or the hack involved an old server image.
newbie
Activity: 42
Merit: 0
Wheres our 11,000BTC Mark!-
hero member
Activity: 770
Merit: 500
the hackers removed december, january and february, but the user endbalances are right.

December, january and february are the most crucial ones (to know who withdrew massive amounts of coins prior to Gox's collapse due to potential insider knowledge). Why would hackers remove these months I wonder  Huh

because there are no hackers and mark made the leak himself?
legendary
Activity: 1153
Merit: 1000
Is there any proof in these documents if these coins were stolen by Gox, or stolen by hackers?

Some accounts have negative balances. Not that this proves anything.

Maybe those are the accounts that used transaction malleability to withdraw the same funds several times over? 

No that would assume Mark had some level of competency required to get his customer service and accounts in order.
hero member
Activity: 672
Merit: 500
Are there any email and passwords in the leaked data? Cos I had an account there and am worried about the leak.
legendary
Activity: 938
Merit: 1001
bitcoin - the aerogel of money
I can confirm that this leak is legit!

I checked the leak against some of my known trades and they match. I never disclosed this information to anyone.
legendary
Activity: 1320
Merit: 1007
My theory is that Mark Karpeles himself leaked this documents and is pretending his website and reddit got hacked, to strengthen his argument that the coins got hacked.

There isn't really any way to prove if he did or not.
sr. member
Activity: 378
Merit: 250
Born to chew bubble gum and kick ass
the hackers removed december, january and february, but the user endbalances are right.

December, january and february are the most crucial ones (to know who withdrew massive amounts of coins prior to Gox's collapse due to potential insider knowledge). Why would hackers remove these months I wonder  Huh
hero member
Activity: 770
Merit: 500
Is there any proof in these documents if these coins were stolen by Gox, or stolen by hackers?

Some accounts have negative balances. Not that this proves anything.
Pages:
Jump to: